NEXTCANVAS
FeaturesPricing
Sign InSign Up
FAQ

Frequently asked questions

Everything you need to know about HeyAvo and Avo — what they are, how they work, how your data is protected, and how to get help.

Last updated: February 22, 2026

What are HeyAvo and Avo?

HeyAvo is an AI-powered workspace that brings together 16 connected apps under a single account. Instead of switching between separate tools for notes, tasks, journaling, health tracking, documents, email, and more, HeyAvo gives you one system where everything is linked. Avo is the shared AI that works across all of it.

The suite includes:

  • Notes— colorful, flexible note-taking
  • Journal— mood tracking and daily reflections
  • Todo— task and project management
  • Health— body metrics and fitness tracking
  • Habits— personal development and habit building
  • Docs— rich document editing
  • Tables— spreadsheet-style data management
  • Calendar— scheduling and events
  • Email— integrated email management
  • Album— memory curation and photo organization
  • Projects— project planning and tracking
  • Flow— visual automation and workflows
  • Mosaic— customizable dashboard display
  • Subs— subscription tracking

What makes HeyAvo different is that all of these apps share a single AI system. Avo learns your preferences, remembers context across apps, and can surface insights that span your entire workflow — not just one tool at a time.

How does single sign-on work across all the apps?

You sign in once and you're authenticated everywhere. HeyAvo uses a secure session cookie scoped to the .heyavo.ai domain, which means every app on every subdomain (notes.heyavo.ai, todo.heyavo.ai, etc.) recognizes your session automatically.

There's no separate login per app, no linking accounts, and no password re-entry when you switch between apps. Your profile, display name, and preferences carry over across the entire suite.

What are Circles and how do they work?

Circles are contextual containers that let you separate your data within each app by relationship or role. Instead of mixing personal tasks with work projects or family plans, you switch Circles and see only what belongs to that context.

HeyAvo includes five Circle types:

  • Personal— your individual data
  • Work— professional projects and tasks
  • Family— shared family context
  • Couple— shared partnership context
  • Custom— any grouping you define

Data is fully isolated between Circles. When you're in your Work Circle, you won't see Personal notes or Family tasks. AI context also respects Circle boundaries, so Avo's suggestions stay relevant to whichever context you're in.

How does Avo work across apps?

Avo is designed as a single brain that spans every app in the suite. When you chat with Avo, it can reference your notes, check your calendar, look at your tasks, review your journal entries, and pull context from any connected app to give you a complete picture.

For straightforward requests (like summarizing a note), Avo responds directly using streaming chat. For more complex queries that involve multiple apps (like “plan my week based on my tasks, health goals, and calendar”), Avo uses a planning system that breaks the work into parallel steps and executes them across apps.

Avo also builds a persistent memory over time. It consolidates what it learns about your preferences and patterns every 24 hours and runs pattern detection every 6 hours. This means the more you use it, the more relevant and personalized its suggestions become.

How secure is my data?

Security is built into every layer of the platform, not bolted on as an afterthought. Here's what that means in practice:

  • Encryption— all data is encrypted in transit via TLS and encrypted at rest using Google Cloud's platform-managed encryption.
  • Session security— sessions use HttpOnly, Secure, SameSite cookies. Session tokens are verified server-side on every request, with revocation checking in production.
  • CSRF protection— every state-changing request is validated using SHA-256-derived CSRF tokens with timing-safe comparison to prevent forgery and timing attacks.
  • Content Security Policy— strict CSP headers control exactly which scripts, styles, and connections are allowed, blocking cross-site scripting and injection attacks.
  • Security headers— X-Frame-Options (DENY), X-Content-Type-Options (nosniff), HSTS with a one-year max-age, and a restrictive Permissions-Policy that disables camera, microphone, and geolocation by default.
  • Database-level access control— Firestore security rules enforce that users can only read and write their own data. Admin operations require verified admin credentials.
  • Rate limiting— AI endpoints and sensitive operations are rate-limited to prevent abuse, with fail-closed behavior on protected routes.
  • CI/CD security checks— automated pipelines validate admin route access patterns, auth gate correctness, and dependency vulnerabilities on every deployment.
Where is my data stored?

All user content — notes, tasks, journal entries, documents, project data, and everything else you create — is stored in Google Cloud Firestore. Media files and attachments are stored in Firebase Storage. Both services run on Google Cloud infrastructure with automatic replication and platform-managed encryption at rest.

HeyAvo does not sell personal information. Data sharing is limited to vetted infrastructure partners (hosting, authentication, AI processing) operating under contractual data protection obligations, and only to the extent required to deliver the service.

Can I export or delete my data?

Yes. You can request a full data export, correction of inaccurate data, or complete deletion of your account and associated content. For users covered by GDPR, HeyAvo supports all standard rights including access, rectification, erasure, restriction, data portability, and the right to object.

To make a request, email privacy@heyavo.ai from the email associated with your account. Include your request type and any relevant workspace or date range details.

Is there a free plan?

Yes. You can get started with HeyAvo for free with no credit card required. The free tier includes access to the app suite, shared sign-on across all apps, cross-app navigation, core Avo-assisted workflows, and real-time sync across your devices.

Paid plans add expanded AI capabilities, higher usage limits, and team collaboration features. Plan details and pricing are presented during signup and billing setup, so you can explore the platform before committing to anything.

How do I contact support?

HeyAvo has dedicated channels depending on what you need help with:

  • Product and account support — support@heyavo.ai (1–2 business day response)
  • Privacy and data requests — privacy@heyavo.ai (2–5 business days)
  • Legal and policy inquiries — legal@heyavo.ai

When emailing, include your app name, account email, and a clear description of the issue to help us respond faster.

Product

  • Features
  • Pricing

Company

  • About
  • Contact

Resources

  • FAQ

Trust

  • Security & Privacy
  • Security Contact

Legal

  • Terms of Service
  • Cookie Policy
  • Acceptable Use Policy
  • GDPR

© 2026 HeyAvo. All rights reserved.

Built with ❤️ for productivity and growth

Questions? Contact us at support@heyavo.ai